
🚨 CRITICAL: Two IBM MQ vulnerabilities can lead to remote code execution. CVE-2026-10747 (CVSS 10.0) is a pre-auth heap buffer overflow that could allow an unauthenticated remote attacker to execute arbitrary code through the MQ listener. CVE-2026-10858 (CVSS 9.9) is a heap buffer underflow affecting IBM MQ for HPE NonStop and can also lead to arbitrary code execution. ⚠️ Patch affected IBM MQ deployments immediately. 🔴 IBM has released fixes for both vulnerabilities. 🔗 IBM Security Bulletin https://www.ibm.com/support/pages/node/7284543 #IBM #IBMMQ #CVE #RCE #CyberSecurity #Infosec

